Mail Express v4.0 and later allows you to use only protocols and algorithms for use by FIPS 140-2. The Federal Information Processing Standard (FIPS) Publication 140-2 specifies the security requirements of cryptographic modules used to protect sensitive information. (Toggling FIPS mode requires that you restart the server service.)
FIPS is not supported for the Outlook Add-In via the DMZ Gateway when the Outlook Add-In is installed on Windows XP. |
To enable security protocols
Log in to the Mail Express Server Administration Interface.
In the navigation pane, under Configuration, click General. The General Settings page appears.
Under Enhanced Communication Security, select the appropriate check boxes:
Use only protocols and algorithms approved for use by FIPS 140-2
Allow TLS v1 (Available in Mail Express v4.3.1 and later)
Allow TLS v1.1 (Available in Mail Express v4.3.1 and later)
Allow TLS v1.2 (Available in Mail Express v4.3.1 and later)
When any of the TLS boxes are selected, Mail Express server is allowed to communicate with clients over the selected protocol. If a check box is not selected, then Mail Express will disallow clients that are using the listed protocol from accessing the site. These boxes are not mutually exclusive; any combination of them may be enabled (all three or none at all—note that none at all is not recommended). TLSv1.2 alone is the default, as it is the most secure. This feature will also require a complete server restart when changed.
Click Save. A message appears at the top of the page.
Click Restart server now.